Metrics
Affected Vendors & Products
Solution
No solution given by the vendor.
Workaround
If you are unable to upgrade to the fixed versions where the required flag will be enabled by default, authentication checks can be configured under System Configuration to remediate the issue.
Thu, 18 Sep 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Thu, 18 Sep 2025 11:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Ericsson Catalog Manager and Ericsson Order Care APIs do not have authentication enabled by default. Authentication checks can be configured to remediate the information disclosure issue. | |
Title | Ericsson Catalog Manager and Ericsson Order Care - Exposure of Sensitive Information Vulnerability | |
Weaknesses | CWE-200 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: ERIC
Published:
Updated: 2025-09-18T13:31:46.260Z
Reserved: 2024-02-02T21:33:13.076Z
Link: CVE-2024-25011

Updated: 2025-09-18T13:31:39.588Z

Status : Awaiting Analysis
Published: 2025-09-18T12:15:38.060
Modified: 2025-09-18T13:43:34.310
Link: CVE-2024-25011

No data.

No data.